What the vulnerability does
01Description
Vulnerability in IdeaBox Creations PowerPack Pro for Elementor.This issue affects PowerPack Pro for Elementor: from n/a through 2.9.23.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L
What the vulnerability does
Vulnerability in IdeaBox Creations PowerPack Pro for Elementor.This issue affects PowerPack Pro for Elementor: from n/a through 2.9.23.
Explanation of Vulnerability in Simple Terms
PowerPack Pro for Elementor versions up to 2.9.23 contain a vulnerability that allows an attacker to read or modify site data and disrupt service. The attack requires a victim to visit a malicious link or page. The vulnerability affects the site's scope, meaning impacts may extend beyond the plugin itself.
What an attacker can do
Read or modify site data, or disrupt service by tricking a visitor into clicking a malicious link.
Potential impact on your site
Visitor data, site content, or availability could be compromised if users are tricked into clicking malicious links.
Conditions required to exploit
Victim must click a malicious link or visit an attacker-controlled page; no authentication required.
Key dates
External resources